Vulnerability Description
DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L, <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/system/basic/license_update.php.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dcnetworks | Dcme-720 Firmware | <= 9.1.5.11 |
| Dcnetworks | Dcme-720 | - |
| Dcnetworks | Dcme-320-L Firmware | <= 9.3.5.26 |
| Dcnetworks | Dcme-320-L | - |
| Dcnetworks | Dcme-320 Firmware | <= 7.4.12.90 |
| Dcnetworks | Dcme-320 | - |
| Dcnetworks | Dcme-520 Firmware | <= 9.25.5.11 |
| Dcnetworks | Dcme-520 | - |
References
FAQ
What is CVE-2024-52777?
CVE-2024-52777 is a vulnerability with a CVSS score of 9.8 (CRITICAL). DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L, <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/system/basic/license_update.php.
How severe is CVE-2024-52777?
CVE-2024-52777 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2024-52777?
Check the references section above for vendor advisories and patch information. Affected products include: Dcnetworks Dcme-720 Firmware, Dcnetworks Dcme-720, Dcnetworks Dcme-320-L Firmware, Dcnetworks Dcme-320-L, Dcnetworks Dcme-320 Firmware.